VendorsKristof De Jaegercommentreference5.x-1.x-dev
Vulnerabilities

Kristof De Jaeger Commentreference 5.x-1.x-dev

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2009-4520
The CCK Comment Reference module 5.x before 5.x-1.2 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to bypass intended access restrictions and read comments by using the autocomplete path.
Published 2009-12-31 · Modified
5.0EPSS 0.012